If this is your first visit, be sure to
check out the Forum Rules by clicking the
link above. You may have to register
before you can post: click the register link above to proceed. To start viewing messages,
select the forum that you want to visit from the selection below.

No the command sequence is correct and airodump will show captured handshake when clients try to authenticate with AP. double check your Passphrase also try to rename .txt to .lst and then try again.Both things works fine .txt. and .lst.that bug was with 0.9 version and I think they have fixed that in rc version of aircrack-ng.

wpa handshake problem

Hi
I have a weird problem with the wpa handshake. I'm using ipwraw driver.
Fisrt i use airodump-ng --channel 9 --bssid xx:xx:xx:xx:xx:xx --write kob rtap0
Then i use aireplay-ng -0 1 -a xx:xx:xx:xx:xx:xx -c zz:zz:zz:zz:zz:zz: wifi0
airodump says that i have captured wpa handshake. aircrack shows a captured wpa handshake as well.
The weird thing is that when i open kob-01.cap with cowpatty it says that i haven't captured the wpa handshake.
Have i captured the wpa handshake correctly or not??

Hi
I have a weird problem with the wpa handshake. I'm using ipwraw driver.
Fisrt i use airodump-ng --channel 9 --bssid xx:xx:xx:xx:xx:xx --write kob rtap0
Then i use aireplay-ng -0 1 -a xx:xx:xx:xx:xx:xx -c zz:zz:zz:zz:zz:zz: wifi0
airodump says that i have captured wpa handshake. aircrack shows a captured wpa handshake as well.
The weird thing is that when i open kob-01.cap with cowpatty it says that i haven't captured the wpa handshake.
Have i captured the wpa handshake correctly or not??

Are you using WPA2 AES encryption? As far as I remember cowpatty does not support/recognize the handshake using this encryption scheme.

Originally Posted by celtec

I've same problem,
I check handshakes with Wireshark and eapol filter but when I try to use aircrack-ng with my wordlists always get error: No valid WPA Handshakes founds.
Any ideas ?

When you check the file with wireshark are you certain that the full 4-way handshake is present, and not only part of it? I have personally never had any problems with aircrack-ng not recognizing a valid handshake.

When you check the file with wireshark are you certain that the full 4-way handshake is present, and not only part of it? I have personally never had any problems with aircrack-ng not recognizing a valid handshake.